ShapedPlugin WordPress Pro Plugins Backdoored in Supply Chain Attack

Multiple WordPress plugins from ShapedPlugin were compromised in a supply chain attack after unknown threat actors managed to tamper with the official release channels and push backdoor code.

“Attackers compromised the vendor’s build and distribution pipeline, injecting backdoor code into Pro plugin releases distributed through official licensed update channels,” Wordfence said in an analysis

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

Leaked OpenAI financials show $38.5B loss and compute burn

Leaked OpenAI financials show $38.5B loss and compute burn Source: Hacker News

The Jqwik Anti-AI Affair

The Jqwik Anti-AI Affair Source: Hacker News

Operation Endgame Disrupts SocGholish Servers, Cleans 14,971 WordPress Sites

Operation Endgame Disrupts SocGholish Servers, Cleans 14,971 WordPress Sites Dutch law enforcement authorities, along with counterparts from Canada , Germany, and the U.S., have disrupted malicious infrastructure associated with SocGholish